CVE-2012-4739: XSS
Multiple cross-site scripting (XSS) vulnerabilities in Barracuda SSL VPN before 2.2.2.203 (2012-07-05) allow remote attackers to inject arbitrary web script or HTML via the (1) policyLaunching, (2) resourcePrefix, or (3) actionPath parameter in showUserResourceCategories.do; (4) list or (5) path parameter to fileSystem.do; or (6) return-To parameter to launchAgent.do.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-4739?
CVE-2012-4739 has a medium severity rating of 4.3.
What vulnerabilities are associated with CVE-2012-4739?
CVE-2012-4739 is associated with multiple cross-site scripting (XSS) vulnerabilities in Barracuda SSL VPN.
How do I fix CVE-2012-4739?
To fix CVE-2012-4739, upgrade Barracuda SSL VPN to version 2.2.2.203 or later.
What software is affected by CVE-2012-4739?
CVE-2012-4739 affects Barracuda Networks Barracuda SSL VPN versions prior to 2.2.2.203.
What are the potential impacts of CVE-2012-4739?
CVE-2012-4739 can allow remote attackers to inject arbitrary web scripts or HTML into the affected system.